0% found this document useful (0 votes)
14 views6 pages

Config Ena

Copyright
© © All Rights Reserved
We take content rights seriously. If you suspect this is your content, claim it here.
Available Formats
Download as TXT, PDF, TXT or read online on Scribd
0% found this document useful (0 votes)
14 views6 pages

Config Ena

Copyright
© © All Rights Reserved
We take content rights seriously. If you suspect this is your content, claim it here.
Available Formats
Download as TXT, PDF, TXT or read online on Scribd
You are on page 1/ 6

Building configuration...

Current configuration : 15886 bytes


!
version 15.5
service timestamps debug datetime msec
service timestamps log datetime msec
service password-encryption
!
hostname BACI ENA
!
boot-start-marker
boot-end-marker
!
aqm-register-fnf
!
enable secret B@ci12345!!
!
aaa new-model
!
!
!
aaa common-criteria policy 1
min-length 12
max-length 25
numeric-count 3
upper-case 2
lower-case 2
special-case 3
char-changes 2
lifetime month 3
!
!
!
!
!
!
aaa session-id common
ethernet lmi ce
!
!
!
!
!
!
!
no ip source-route
no ip gratuitous-arps
ip options drop
!
!
!
!
!
!
!
!
!
!

!
!
!
!
no ip bootp server
no ip domain lookup
ip domain name rtp.atech.net
ip cef
login block-for 150 attempts 5 within 60
login delay 5
login quiet-mode access-class 23
login on-failure log
login on-success log
no ipv6 cef
!
!
!
!
!
multilink bundle-name authenticated
!
!
!
!
!
!
!
license udi pid C891FJ-K9 sn FGL221990E9
!
!
username assale.aka privilege 15 secret 5 $1$bnol$rk9gc2J4SWUdiGGyegqBX0
username eric.attoubou privilege 15 secret 5 $1$krhX$LMKDF8GktH0LR6PyzY3xS/
username karifa.toure privilege 15 secret 5 $1$0Zjq$Fx45ZdEzNnsn1Pce3OcGC1
username elisee.kouassi privilege 15 secret 5 $1$.M/E$hRlBJBR9kaxRex9dyB8v5.
username recovery.baci privilege 15 secret 5 $1$.pQs$vmliHlUBgSWBBMUeQkLbR/
username tripwire secret 5 $1$ZvPe$PHHD86zZclq0dne/BycmW/
username rancid.baci privilege 15 secret 5 $1$aY8j$Xq9R/drPVCMf4/MhNms4.1
username evrard.teti privilege 15 secret 5 $1$5tZO$FcrxyyBXQBCDM42aExLgD/
!

!
interface Tunnel0
description ****tunnel ENA vers SIEGE****
ip address 172.16.225.54 255.255.255.252
tunnel source Loopback0
tunnel destination 10.1.1.14
tunnel mode ipip
!
interface Loopback0
ip address 10.1.15.1 255.255.255.255
!
interface Loopback2
ip address 10.130.33.129 255.255.255.255
!
interface Loopback1111
ip address 10.230.36.74 255.255.255.255
!
!
interface BRI0
no ip address
encapsulation hdlc
isdn termination multidrop
!
interface FastEthernet0
description --- INTERCO VIPNET ---
ip address
duplex auto
speed auto
no cdp enable
!
interface GigabitEthernet0
description WAN MOOV
no ip address
!
interface GigabitEthernet1
no ip address
!
interface GigabitEthernet2
no ip address
!
interface GigabitEthernet3
no ip address
!
interface GigabitEthernet4
no ip address
!
interface GigabitEthernet5
no ip address
!
interface GigabitEthernet6
no ip address
!
interface GigabitEthernet7
no ip address
!
interface GigabitEthernet8
no ip address
duplex auto
speed auto
bridge-group 1
bridge-group 1 input-address-list 700
bridge-group 1 spanning-disabled
!
interface GigabitEthernet8.600
description VLAN CAISSE
encapsulation dot1Q 600
no cdp enable
bridge-group 60
bridge-group 60 input-address-list 700
!
interface GigabitEthernet8.601
description VLAN CHARGE CLIENTELE
encapsulation dot1Q 601
no cdp enable
bridge-group 61
bridge-group 61 input-address-list 700
!
interface GigabitEthernet8.602
description VLAN DAB
encapsulation dot1Q 602
no cdp enable
bridge-group 62
bridge-group 62 input-address-list 700
!
interface GigabitEthernet8.603
description VLAN SECURITE BANQUE
encapsulation dot1Q 603
no cdp enable
bridge-group 63
bridge-group 63 input-address-list 700
!
interface GigabitEthernet8.604
description VLAN MANAGEMENT
encapsulation dot1Q 604
no cdp enable
bridge-group 64
bridge-group 64 input-address-list 700
!
interface GigabitEthernet8.605
description VLAN MISSIONS
encapsulation dot1Q 605
no cdp enable
bridge-group 65
bridge-group 65 input-address-list 700
!
interface GigabitEthernet8.606
description VLAN IMPRIMANTES
encapsulation dot1Q 606
no cdp enable
bridge-group 66
bridge-group 66 input-address-list 700
!
interface GigabitEthernet8.607
description VLAN VOICE
encapsulation dot1Q 607
no cdp enable
bridge-group 67
bridge-group 67 input-address-list 700
!
interface Vlan1
description ====LIEN_MOOV====
ip address 172.20.255.32 255.255.255.0
duplex auto
speed auto
!
interface Async3
no ip address
encapsulation slip
!
interface BVI60
ip address 10.120.33.65 255.255.255.248
ip access-group CAISSIERS in
!
interface BVI61
ip address 10.120.33.81 255.255.255.240
ip access-group C_CLIENTELE in
!
interface BVI62
ip address 10.120.33.73 255.255.255.248
ip access-group DAB in
!
interface BVI63
ip address 10.130.33.81 255.255.255.240
ip access-group SECURITE-BNQ in
!
interface BVI64
ip address 10.130.33.65 255.255.255.248
ip access-group MGT in
!
interface BVI65
ip address 10.130.33.73 255.255.255.248
ip access-group MISSIONS in
!
interface BVI66
ip address 10.120.33.97 255.255.255.240
ip access-group IMPRIMANTES in
!
interface BVI67
ip address 10.120.101.225 255.255.255.240
ip access-group VOICE in
!
ip forward-protocol nd
no ip http server
ip http secure-server
!
!
router eigrp 160
redistribute static
network 10.120.33.64 0.0.0.7
network 10.120.33.72 0.0.0.7
network 10.120.33.80 0.0.0.15
network 10.120.33.96 0.0.0.15
network 10.120.101.224 0.0.0.15
network 10.130.33.64 0.0.0.7
network 10.130.33.72 0.0.0.7
network 10.130.33.80 0.0.0.15
network 172.22.16.0 0.0.0.127
network 172.22.17.0 0.0.0.127
auto-summary
!
ip classless
ip route 0.0.0.0 0.0.0.0 172.20.255.1
ip route 10.120.15.13 255.255.255.255 172.20.255.1
!
ip ssh time-out 60
ip ssh logging events
ip ssh version 2
ip ssh dh min size 2048
ip ssh server algorithm encryption aes128-ctr aes192-ctr aes256-ctr
!
ip access-list extended CAISSIERS
deny ip 10.120.33.64 0.0.0.7 10.120.33.80 0.0.0.7
deny ip 10.120.33.64 0.0.0.7 10.120.33.72 0.0.0.7
deny ip 10.120.33.64 0.0.0.7 10.130.33.64 0.0.0.7
deny ip 10.120.33.64 0.0.0.7 10.130.33.72 0.0.0.7
deny ip 10.120.33.64 0.0.0.7 10.130.33.80 0.0.0.15
permit ip 10.120.33.64 0.0.0.7 any
ip access-list extended C_CLIENTELE
permit ip 10.120.33.80 0.0.0.15 any
deny ip 10.120.33.80 0.0.0.15 10.120.33.64 0.0.0.7
deny ip 10.120.33.80 0.0.0.15 10.120.33.72 0.0.0.7
deny ip 10.120.33.80 0.0.0.15 10.130.33.64 0.0.0.7
deny ip 10.120.33.80 0.0.0.15 10.130.33.72 0.0.0.7
deny ip 10.120.33.80 0.0.0.15 10.130.33.80 0.0.0.15
ip access-list extended DAB
deny ip 10.120.33.72 0.0.0.7 10.120.33.64 0.0.0.7
deny ip 10.120.33.72 0.0.0.7 10.120.33.80 0.0.0.15
deny ip 10.120.33.72 0.0.0.7 10.130.33.64 0.0.0.7
deny ip 10.120.33.72 0.0.0.7 10.130.33.72 0.0.0.7
deny ip 10.120.33.72 0.0.0.7 10.130.33.80 0.0.0.15
permit ip 10.120.33.72 0.0.0.7 any
ip access-list extended MG
deny ip 10.130.33.64 0.0.0.7 10.120.33.64 0.0.0.7
deny ip 10.130.33.64 0.0.0.7 10.120.33.72 0.0.0.7
deny ip 10.130.33.64 0.0.0.7 10.120.33.80 0.0.0.15
deny ip 10.130.33.64 0.0.0.7 10.130.33.72 0.0.0.7
deny ip 10.130.33.64 0.0.0.7 10.130.33.80 0.0.0.15
ip access-list extended VOICE
permit ip 10.120.101.224 0.0.0.15 any
!

You might also like